دوره TCM Security – Linux Privilege Escalation for Beginners

This course focuses on Linux Privilege Escalation tactics and techniques designed to help you improve your privilege escalation game. Students should take this course if they are interested in:

  • Gaining a better understanding of privilege escalation techniques
  • Improving Capture the Flag skillset
  • Preparing for certifications such as the PNPT, OSCP, eCPPT, CEH, etc.

What will I learn?

  • Kernel Exploits
  • Password Hunting
  • File Permissions
  • Sudo Attacks
  • Shell Escaping
  • Intended Functionality
  • LD_PRELOAD
  • CVE-2019-14287
  • CVE-2019-18634
  • SUID Attacks
  • Shared Object Injection
  • Binary Symlinks
  • Environment Variables
  • Capabilities Attacks
  • Scheduled Tasks
  • NFS
  • Docker

Syllabus

  1. Introduction
  2. Lab Overview & Initial Access
  3. Initial Enumeration
  4. Exploring Automated Tools
  5. Escalation Path: Kernel Exploits
  6. Escalation Path: Passwords & File Permissions
  7. Escalation Path: Sudo
  8. Escalation Path: SUID
  9. Escalation Path: Other SUID Escalation
  10. Escalation Path: Capabilities
  11. Escalation Path: Scheduled Tasks
  12. Escalation Path: NFS Root Squashing
  13. Escalation Path: Docker
  14. Capstone Challenge
  15. Wrapping Up

TCM Security – Linux Privilege Escalation for Beginners